Lucene search

K
nvd[email protected]NVD:CVE-2023-0117
HistoryMay 26, 2023 - 5:15 p.m.

CVE-2023-0117

2023-05-2617:15:13
CWE-287
web.nvd.nist.gov
2
hwkitassistant authentication
identity verification
meetime availability

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

18.4%

The online authentication provided by the hwKitAssistant lacks strict identity verification of applications. Successful exploitation of this vulnerability may affect availability of features,such as MeeTime.

Affected configurations

Nvd
Node
huaweiemuiMatch13.0.0
VendorProductVersionCPE
huaweiemui13.0.0cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

18.4%

Related for NVD:CVE-2023-0117